ZeroHour

CVE-2020-26508

CVSS 3.1
9.8 critical
EPSS
1%p65
Published
()
Modified
Description

The WebTools component on Canon Oce ColorWave 3500 5.1.1.0 devices allows attackers to retrieve stored SMB credentials via the export feature, even though these are intentionally inaccessible in the UI.

Vendors
canon
Products
oce colorwave 3500 firmware
Weakness
CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.